CompTIA Security+
CompTIA
The most widely requested first certification. Covers threats, architecture, operations and governance — the baseline most junior SOC roles ask for.
for people breaking into security
EntryVector maps ten credible certification programs from zero-experience to professional level, and streams cybersecurity news through a free, open public API — no accounts, no paywall.
Start at Entry, prove hands-on ability at Associate, then specialise. Prices are indicative — check the provider for current exam fees and vouchers.
CompTIA
The most widely requested first certification. Covers threats, architecture, operations and governance — the baseline most junior SOC roles ask for.
ISC2
Zero-experience entry point with free training and exam through ISC2's program. Ideal as a very first credential.
Google / Coursera
Self-paced program covering SIEM, Linux, Python and incident response with labs. Good bridge into Security+.
Microsoft
Practical defender track built on Microsoft Sentinel and Defender — highly employable in Azure-heavy shops.
Cisco
Network-centric monitoring, intrusion analysis and incident handling for tier-1 SOC work.
INE Security
Fully hands-on junior penetration tester exam. A friendlier on-ramp to offensive security than OSCP.
TryHackMe
Practical, lab-based analyst certification from a platform many newcomers already train on.
OffSec
The benchmark 24-hour practical hacking exam. Expect months of lab time — pursue after eJPT-level skills.
SANS / GIAC
Deep, well-respected defensive credential often funded by employers. Strong for government and defense roles.
ISC2
Management-level standard requiring five years of experience — plan for it, don't start with it.
ISC2 CC or the Google certificate plus daily lab time on TryHackMe. Learn networking, Linux and logs before tools.
Security+ or SC-200 to clear HR filters, while you build a public homelab writeup portfolio.
Choose blue team (CyberOps, SAL1) or offensive (eJPT then OSCP) and follow the news feed to track what employers hire for.
Breaches, vulnerabilities, ransomware and industry updates, pulled from the open Hacker News search API.